First published: Tue Jun 12 2018(Updated: )
Under certain conditions, SAP Business One, 9.2, 9.3, for SAP HANA backup service allows an attacker to access information which would otherwise be restricted.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
Sap Business One | =9.2 | |
Sap Business One | =9.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-2425 is high.
SAP Business One versions 9.2 and 9.3 for SAP HANA backup service are affected by CVE-2018-2425.
Under certain conditions, an attacker can exploit CVE-2018-2425 to access restricted information through the SAP HANA backup service in SAP Business One 9.2 and 9.3.
Yes, SAP has released fixes for CVE-2018-2425. Please refer to the SAP notes for more information.
You can find more information about CVE-2018-2425 on SecurityFocus, SAP Support Launchpad, and the SAP Community Network.